Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 03:59:16.463 00:00:10.361 TCP 23.104.0.1:42590 -> 1.101.0.1:3000 11 1507 1 2025-11-23 03:59:35.124 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:60764 10 6452 1 2025-11-23 04:00:16.863 00:00:10.331 TCP 23.104.0.1:54010 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:00:35.334 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60606 10 6452 1 2025-11-23 04:01:17.229 00:00:10.967 TCP 23.104.0.1:52170 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:01:34.739 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:01:34.870 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:01:35.541 00:00:14.826 TCP 1.101.0.1:3000 -> 22.102.0.1:45296 10 6452 1 2025-11-23 03:58:02.496 00:05:04.165 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-23 03:58:02.499 00:05:04.160 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-23 04:02:18.234 00:00:10.361 TCP 23.104.0.1:51834 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:02:40.405 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:52314 10 6452 1 2025-11-23 04:03:18.633 00:00:10.331 TCP 23.104.0.1:51164 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:03:40.631 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47456 10 6452 1 2025-11-23 04:04:18.998 00:00:10.321 TCP 23.104.0.1:46428 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:04:40.845 00:00:13.359 TCP 1.101.0.1:3000 -> 22.102.0.1:49058 10 6452 1 2025-11-23 04:05:19.360 00:00:10.364 TCP 23.104.0.1:34968 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:05:44.248 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:35038 10 6452 1 2025-11-23 04:06:19.757 00:00:10.369 TCP 23.104.0.1:34210 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:06:35.036 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:06:35.061 00:00:00.028 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:06:44.473 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49716 10 6452 1 2025-11-23 04:07:20.165 00:00:10.367 TCP 23.104.0.1:56378 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:07:44.686 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:40328 10 6452 1 2025-11-23 04:04:02.500 00:05:04.160 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-23 04:04:02.497 00:05:04.165 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-23 04:08:20.574 00:00:10.372 TCP 23.104.0.1:47308 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:08:44.908 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:50626 10 6452 1 2025-11-23 04:09:20.983 00:00:10.338 TCP 23.104.0.1:42026 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:09:45.130 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:37692 10 6452 1 2025-11-23 04:10:21.362 00:00:10.365 TCP 23.104.0.1:57984 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:10:45.300 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:36714 10 6452 1 2025-11-23 04:11:35.401 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:11:35.157 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:11:21.766 00:00:10.336 TCP 23.104.0.1:60612 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:11:45.507 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41164 10 6452 1 2025-11-23 04:12:22.139 00:00:10.364 TCP 23.104.0.1:40042 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:12:45.719 00:00:10.494 TCP 1.101.0.1:3000 -> 22.102.0.1:44472 10 6452 1 2025-11-23 04:13:22.545 00:00:10.369 TCP 23.104.0.1:47106 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:13:46.251 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51320 10 6452 1 2025-11-23 04:10:02.503 00:05:04.159 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-23 04:10:02.501 00:05:04.164 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-23 04:14:22.951 00:00:10.369 TCP 23.104.0.1:36788 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:14:46.467 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60790 10 6452 1 2025-11-23 04:15:23.362 00:00:10.369 TCP 23.104.0.1:56450 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:15:46.679 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41362 10 6452 1 2025-11-23 04:16:35.602 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:16:23.770 00:00:10.372 TCP 23.104.0.1:57674 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:16:35.388 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:16:46.894 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37116 10 6452 1 2025-11-23 04:17:24.180 00:00:10.366 TCP 23.104.0.1:45494 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:17:47.114 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:56812 10 6452 1 2025-11-23 04:18:24.582 00:00:10.370 TCP 23.104.0.1:57886 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:18:47.290 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34600 10 6452 1 2025-11-23 04:19:24.989 00:00:10.365 TCP 23.104.0.1:42066 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:19:47.506 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:42474 10 6452 1 2025-11-23 04:16:02.503 00:05:04.159 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-23 04:16:02.500 00:05:04.165 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-23 04:20:25.396 00:00:10.323 TCP 23.104.0.1:37002 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:20:47.726 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48490 10 6452 1 2025-11-23 04:21:35.323 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:21:35.256 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:21:25.760 00:00:10.383 TCP 23.104.0.1:47164 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:21:47.943 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:34878 10 6452 1 2025-11-23 04:22:26.174 00:00:10.367 TCP 23.104.0.1:38934 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:22:48.191 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:51708 10 6452 1 2025-11-23 04:23:26.579 00:00:10.363 TCP 23.104.0.1:43244 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:23:48.410 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:56090 10 6452 1 2025-11-23 04:24:26.984 00:00:10.321 TCP 23.104.0.1:46572 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:24:48.632 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42228 10 6452 1 2025-11-23 04:25:27.349 00:00:10.363 TCP 23.104.0.1:52950 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:25:48.853 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:34668 10 6452 1 2025-11-23 04:22:02.502 00:05:04.164 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-23 04:22:02.506 00:05:04.159 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-23 04:26:35.584 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:26:35.680 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:26:27.752 00:00:10.369 TCP 23.104.0.1:35308 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:26:49.086 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41006 10 6452 1 2025-11-23 04:27:28.153 00:00:10.364 TCP 23.104.0.1:47274 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:27:49.287 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:39588 10 6452 1 2025-11-23 04:28:28.555 00:00:10.323 TCP 23.104.0.1:42290 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:28:49.459 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33546 10 6452 1 2025-11-23 04:29:28.919 00:00:10.388 TCP 23.104.0.1:50330 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:29:49.680 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:38080 10 6452 1 2025-11-23 04:30:29.354 00:00:10.435 TCP 23.104.0.1:40948 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:30:49.858 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:44978 10 6452 1 2025-11-23 04:31:35.614 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:31:35.606 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:31:29.837 00:00:10.348 TCP 23.104.0.1:45020 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:31:50.086 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42780 10 6452 1 2025-11-23 04:28:02.506 00:05:04.159 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-23 04:28:02.505 00:05:04.164 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-23 04:32:30.227 00:00:10.370 TCP 23.104.0.1:55818 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:32:50.303 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52160 10 6452 1 2025-11-23 04:33:30.637 00:00:10.369 TCP 23.104.0.1:58038 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:33:50.516 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:32808 10 6452 1 2025-11-23 04:34:31.051 00:00:10.363 TCP 23.104.0.1:37826 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:34:50.737 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57130 10 6452 1 2025-11-23 04:35:31.458 00:00:10.363 TCP 23.104.0.1:34736 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:35:50.958 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35176 10 6452 1 2025-11-23 04:36:35.978 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:36:35.841 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:36:31.856 00:00:10.381 TCP 23.104.0.1:38290 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:36:51.175 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39368 10 6452 1 2025-11-23 04:37:32.272 00:00:10.367 TCP 23.104.0.1:47248 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:37:51.391 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:36502 10 6452 1 2025-11-23 04:34:02.507 00:05:04.158 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-23 04:34:02.505 00:05:04.164 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-23 04:38:32.681 00:00:10.359 TCP 23.104.0.1:50914 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:38:51.619 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43492 10 6452 1 2025-11-23 04:39:33.105 00:00:10.362 TCP 23.104.0.1:44150 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:39:51.840 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:52404 10 6452 1 2025-11-23 04:40:33.507 00:00:10.367 TCP 23.104.0.1:38082 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:40:52.025 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43070 10 6452 1 2025-11-23 04:41:35.822 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:41:35.549 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:41:33.908 00:00:10.365 TCP 23.104.0.1:32780 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:41:52.242 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:56410 10 6452 1 2025-11-23 04:42:34.316 00:00:10.362 TCP 23.104.0.1:55936 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:42:52.415 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44880 10 6452 1 2025-11-23 04:43:34.719 00:00:10.374 TCP 23.104.0.1:37092 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:40:02.510 00:05:04.157 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-23 04:43:52.631 00:00:10.350 TCP 1.101.0.1:3000 -> 22.102.0.1:50330 10 6452 1 2025-11-23 04:40:02.509 00:05:04.162 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-23 04:44:35.131 00:00:10.366 TCP 23.104.0.1:47654 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:44:53.026 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39506 10 6452 1 2025-11-23 04:45:35.555 00:00:10.697 TCP 23.104.0.1:52942 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:45:53.242 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46460 10 6452 1 2025-11-23 04:46:35.777 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:46:35.924 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:46:36.288 00:00:10.368 TCP 23.104.0.1:59428 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:46:53.415 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:51912 10 6452 1 2025-11-23 04:47:36.694 00:00:10.328 TCP 23.104.0.1:38562 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:47:53.632 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46208 10 6452 1 2025-11-23 04:48:37.061 00:00:10.365 TCP 23.104.0.1:57734 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:48:53.849 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:34208 11 6492 1 2025-11-23 04:49:37.463 00:00:10.326 TCP 23.104.0.1:39238 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:49:54.088 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57740 10 6452 1 2025-11-23 04:46:02.510 00:05:04.161 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-23 04:46:02.512 00:05:04.156 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-23 04:50:37.829 00:00:10.395 TCP 23.104.0.1:48688 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:50:54.319 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:46256 10 6452 1 2025-11-23 04:51:36.086 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:51:36.035 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:51:38.262 00:00:14.602 TCP 23.104.0.1:39248 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:51:54.554 00:00:10.352 TCP 1.101.0.1:3000 -> 22.102.0.1:45506 10 6452 1 2025-11-23 04:52:42.904 00:00:10.376 TCP 23.104.0.1:51788 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:52:54.943 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:49852 10 6452 1 2025-11-23 04:53:43.323 00:00:10.372 TCP 23.104.0.1:38046 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:53:55.172 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52656 10 6452 1 2025-11-23 04:54:43.738 00:00:10.365 TCP 23.104.0.1:43272 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:54:55.381 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55566 10 6452 1 2025-11-23 04:55:44.144 00:00:10.322 TCP 23.104.0.1:60264 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:55:55.606 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:58088 10 6452 1 2025-11-23 04:52:02.512 00:05:04.162 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-11-23 04:52:02.515 00:05:04.157 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-11-23 04:56:36.243 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 04:56:36.559 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-11-23 04:56:44.504 00:00:10.368 TCP 23.104.0.1:38734 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:56:55.842 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60340 10 6452 1 2025-11-23 04:57:44.909 00:00:10.327 TCP 23.104.0.1:37074 -> 1.101.0.1:3000 11 1507 1 2025-11-23 04:57:56.079 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54238 10 6452 1 Summary: total flows: 162, total bytes: 490429, total packets: 1552, avg bps: 1088, avg pps: 0, avg bpp: 315 Time window: 2025-11-23 03:58:02 - 2025-11-23 04:58:06 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0053s User: 0.0011s Wall: 0.0025s flows/second: 65271.6 Runtime: 0.0025s